首页> 外文期刊>Computer Fraud & Security >Skimming the technical and legal aspects of BS7799 can give a false sense of security
【24h】

Skimming the technical and legal aspects of BS7799 can give a false sense of security

机译:略读BS7799的技术和法律方面可能会给人一种错误的安全感

获取原文
获取原文并翻译 | 示例
       

摘要

BS7799 is an Information Security Management Standard and should not be confused as a technology standard. It is highly regarded within the security management industry, but how many security professionals have asked the question; "Are we getting the most out of our BS7799 programme?" If a thorough Risk Assessment is performed, it can recommend particular technology controls, which are then implemented to mitigate particular risks. The technical controls and the way in which they are implemented, however, can be interpreted differently from person to person. BS7799 provides a framework in which security should be managed, but it is important to explore further the high-level control policies, and in particular those within technical and legal areas.
机译:BS7799是一个信息安全管理标准,不应与技术标准混淆。在安全管理行业中,它受到高度重视,但是有多少安全专业人员提出了这个问题? “我们能从BS7799计划中获得最大收益吗?”如果进行了全面的风险评估,则可以推荐特定的技术控制措施,然后实施这些控制措施以减轻特定的风险。但是,每个人对技术控制及其实施方式的理解可能有所不同。 BS7799提供了一个应该管理安全性的框架,但是进一步探索高级控制策略,尤其是技术和法律领域的策略很重要。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号